If you discover a security vulnerability in this package, please report it to us.
DO NOT create a public GitHub issue for security vulnerabilities.
Email: support@revenium.io
Please include:
- Package name and version
- Description of the vulnerability
- Steps to reproduce (if applicable)
- Potential impact
- Suggested fix (if available)
We will review and respond to security reports in a timely manner.
When using this middleware:
- API Keys: Never commit API keys to version control
- Environment Variables: Use environment variables for sensitive configuration
- PII Handling: Ensure no PII is sent to Revenium unless explicitly configured for billing purposes
- Network Security: Always use HTTPS connections
- Updates: Keep the package updated to the latest version